Hi folks,

I have reproduced the failures that caused this regression, and have a
new nginx update that will fix the CVE without causing it again. It
passes all the new tests I've created, and it also passes the upstream
NGINX test suite.

I have uploaded it to the security team PPA here:
https://launchpad.net/~ubuntu-security-proposed/+archive/ubuntu/ppa/+packages

I plan on publishing the update probably on Monday.

I would appreciate it if you could give it a spin in your environment
before then, to confirm that this new version works as expected. Please
comment here if you do.

Thanks, and once again apologies for the inconvenience.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2164558

Title:
  nginx 1.24.0-2ubuntu7.16 regression: "no buffer space in script copy"
  with FastCGI/HTTP/2

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nginx/+bug/2164558/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to